Split Brain DNS and forwarders (Can do in 8.2?)

Barry Margolin barmar at bbnplanet.com
Tue Jun 1 20:10:00 UTC 1999


In article <2869.928267131 at dmgt01>, Jim Ault  <aultj at dmgt01.crd.ge.com> wrote:
>Now that we want to move forward to BIND 8.2, we have a quandary:
>
>If we run our primary name server NS on an internal network, this machine
>will not know how to get external names like yahoo.com, but it needs to
>know that it can reach other divisions of xyz.com directly.
>
>If we run our primary name server on an external network, it will be
>able to reach all hosts on the internet, but it will not be able to
>query other divisions of xyz.com directly, because it has an external
>network address.  We also would like to avoid excessive DNS traffic
>through our firewall. 
>
>How close can we come to duplicating our existing split brain
>functionality with BIND 8.2 on an internal DNS server running in tandem
>with an external DNS server?

BIND 8.2 supports more flexible forwarding.  You can configure a default
forwarder in the "options" statement, but override this for individual
zones by defining them as "type forward".  See
<http://www.isc.org/bind8.2/zone.html> for the details.

-- 
Barry Margolin, barmar at bbnplanet.com
GTE Internetworking, Powered by BBN, Burlington, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Please DON'T copy followups to me -- I'll assume it wasn't posted to the group.



More information about the bind-users mailing list